Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2003-1394

Disclosure Date: December 31, 2003 (last updated February 22, 2025)
CoffeeCup Software Password Wizard 4.0 stores sensitive information such as usernames and passwords in a .apw file under the web document root with insufficient access control, which allows remote attackers to obtain that information via a direct request for the file.
0
Attacker Value
Unknown

CVE-2001-0103

Disclosure Date: February 12, 2001 (last updated February 22, 2025)
CoffeeCup Direct and Free FTP clients uses weak encryption to store passwords in the FTPServers.ini file, which could allow attackers to easily decrypt the passwords.
0